GHSA-9fq2-x9r6-wfmfCriticalCVSS 9.8

Numpy Deserialization of Untrusted Data

Published
May 24, 2022
Last Modified
July 6, 2026

🔗 CVE IDs covered (1)

📋 Description

** DISPUTED ** An issue was discovered in NumPy 1.16.2 and earlier. It uses the pickle Python module unsafely, which allows remote attackers to execute arbitrary code via a crafted serialized object, as demonstrated by a numpy.load call. NOTE: third parties dispute this issue because it is a behavior that might have legitimate applications in (for example) loading serialized Python object arrays from trusted and authenticated sources.

🎯 Affected products1

  • pip/numpy:< 1.16.3

🔗 References (17)